CVE-2020-3121
Cisco Small Business Smart and Managed Switches Cross-Site Scripting Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability in the web-based management interface of Cisco Small Business Smart and Managed Switches could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of the affected device. An attacker could exploit this vulnerability by persuading a user of the interface to click a malicious link and access a specific page. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.
Una vulnerabilidad en la interfaz de administración basada en web de Cisco Small Business Smart and Managed Switches, podría permitir a un atacante remoto no autenticado llevar a cabo un ataque de tipo cross-site scripting (XSS) contra un usuario de la interfaz. La vulnerabilidad es debido a una comprobación insuficiente de la entrada suministrada por parte del usuario mediante la interfaz de administración basada en web del dispositivo afectado. Un atacante podría explotar esta vulnerabilidad al persuadir a un usuario de la interfaz para que haga clic en un enlace malicioso y acceda a una página específica. Una explotación con éxito podría permitir al atacante ejecutar código de script arbitrario en el contexto de la interfaz afectada o acceder a información confidencial basada en el navegador.
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2019-12-12 CVE Reserved
- 2020-01-26 CVE Published
- 2023-03-07 EPSS Updated
- 2024-11-15 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Sg250x-24 Firmware Search vendor "Cisco" for product "Sg250x-24 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250x-24 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250x-24 Search vendor "Cisco" for product "Sg250x-24" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250x-24p Firmware Search vendor "Cisco" for product "Sg250x-24p Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250x-24p Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250x-24p Search vendor "Cisco" for product "Sg250x-24p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250x-48 Firmware Search vendor "Cisco" for product "Sg250x-48 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250x-48 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250x-48 Search vendor "Cisco" for product "Sg250x-48" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250x-48p Firmware Search vendor "Cisco" for product "Sg250x-48p Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250x-48p Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250x-48p Search vendor "Cisco" for product "Sg250x-48p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-08 Firmware Search vendor "Cisco" for product "Sg250-08 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-08 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-08 Search vendor "Cisco" for product "Sg250-08" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-08hp Firmware Search vendor "Cisco" for product "Sg250-08hp Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-08hp Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-08hp Search vendor "Cisco" for product "Sg250-08hp" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-10p Firmware Search vendor "Cisco" for product "Sg250-10p Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-10p Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-10p Search vendor "Cisco" for product "Sg250-10p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-18 Firmware Search vendor "Cisco" for product "Sg250-18 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-18 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-18 Search vendor "Cisco" for product "Sg250-18" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-26 Firmware Search vendor "Cisco" for product "Sg250-26 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-26 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-26 Search vendor "Cisco" for product "Sg250-26" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-26hp Firmware Search vendor "Cisco" for product "Sg250-26hp Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-26hp Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-26hp Search vendor "Cisco" for product "Sg250-26hp" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-26p Firmware Search vendor "Cisco" for product "Sg250-26p Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-26p Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-26p Search vendor "Cisco" for product "Sg250-26p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-50 Firmware Search vendor "Cisco" for product "Sg250-50 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-50 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-50 Search vendor "Cisco" for product "Sg250-50" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-50hp Firmware Search vendor "Cisco" for product "Sg250-50hp Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-50hp Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-50hp Search vendor "Cisco" for product "Sg250-50hp" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-50p Firmware Search vendor "Cisco" for product "Sg250-50p Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-50p Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-50p Search vendor "Cisco" for product "Sg250-50p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-24 Firmware Search vendor "Cisco" for product "Sg250-24 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-24 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-24 Search vendor "Cisco" for product "Sg250-24" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-24p Firmware Search vendor "Cisco" for product "Sg250-24p Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-24p Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-24p Search vendor "Cisco" for product "Sg250-24p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-48 Firmware Search vendor "Cisco" for product "Sg250-48 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-48 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-48 Search vendor "Cisco" for product "Sg250-48" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg250-48hp Firmware Search vendor "Cisco" for product "Sg250-48hp Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg250-48hp Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg250-48hp Search vendor "Cisco" for product "Sg250-48hp" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sf350-48 Firmware Search vendor "Cisco" for product "Sf350-48 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sf350-48 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sf350-48 Search vendor "Cisco" for product "Sf350-48" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sf350-48p Firmware Search vendor "Cisco" for product "Sf350-48p Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sf350-48p Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sf350-48p Search vendor "Cisco" for product "Sf350-48p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sf350-48mp Firmware Search vendor "Cisco" for product "Sf350-48mp Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sf350-48mp Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sf350-48mp Search vendor "Cisco" for product "Sf350-48mp" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg350-10 Firmware Search vendor "Cisco" for product "Sg350-10 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg350-10 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg350-10 Search vendor "Cisco" for product "Sg350-10" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg350-10p Firmware Search vendor "Cisco" for product "Sg350-10p Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg350-10p Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg350-10p Search vendor "Cisco" for product "Sg350-10p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg350-10mp Firmware Search vendor "Cisco" for product "Sg350-10mp Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg350-10mp Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg350-10mp Search vendor "Cisco" for product "Sg350-10mp" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg355-10mp Firmware Search vendor "Cisco" for product "Sg355-10mp Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg355-10mp Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg355-10mp Search vendor "Cisco" for product "Sg355-10mp" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg350-28 Firmware Search vendor "Cisco" for product "Sg350-28 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg350-28 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg350-28 Search vendor "Cisco" for product "Sg350-28" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg350-28p Firmware Search vendor "Cisco" for product "Sg350-28p Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg350-28p Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg350-28p Search vendor "Cisco" for product "Sg350-28p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg350-28mp Firmware Search vendor "Cisco" for product "Sg350-28mp Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg350-28mp Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg350-28mp Search vendor "Cisco" for product "Sg350-28mp" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sx550x-16ft Firmware Search vendor "Cisco" for product "Sx550x-16ft Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sx550x-16ft Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sx550x-16ft Search vendor "Cisco" for product "Sx550x-16ft" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sx550x-24ft Firmware Search vendor "Cisco" for product "Sx550x-24ft Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sx550x-24ft Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sx550x-24ft Search vendor "Cisco" for product "Sx550x-24ft" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sx550x-12ft Firmware Search vendor "Cisco" for product "Sx550x-12ft Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sx550x-12ft Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sx550x-12ft Search vendor "Cisco" for product "Sx550x-12ft" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sx550x-24ft Firmware Search vendor "Cisco" for product "Sx550x-24ft Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sx550x-24ft Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sx550x-24ft Search vendor "Cisco" for product "Sx550x-24ft" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sx550x-24 Firmware Search vendor "Cisco" for product "Sx550x-24 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sx550x-24 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sx550x-24 Search vendor "Cisco" for product "Sx550x-24" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sx550x-52 Firmware Search vendor "Cisco" for product "Sx550x-52 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sx550x-52 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sx550x-52 Search vendor "Cisco" for product "Sx550x-52" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg550x-24 Firmware Search vendor "Cisco" for product "Sg550x-24 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg550x-24 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg550x-24 Search vendor "Cisco" for product "Sg550x-24" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg550x-24p Firmware Search vendor "Cisco" for product "Sg550x-24p Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg550x-24p Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg550x-24p Search vendor "Cisco" for product "Sg550x-24p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg550x-24mp Firmware Search vendor "Cisco" for product "Sg550x-24mp Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg550x-24mp Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg550x-24mp Search vendor "Cisco" for product "Sg550x-24mp" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg550x-24mpp Firmware Search vendor "Cisco" for product "Sg550x-24mpp Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg550x-24mpp Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg550x-24mpp Search vendor "Cisco" for product "Sg550x-24mpp" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg550x-48 Firmware Search vendor "Cisco" for product "Sg550x-48 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg550x-48 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg550x-48 Search vendor "Cisco" for product "Sg550x-48" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg550x-48p Firmware Search vendor "Cisco" for product "Sg550x-48p Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg550x-48p Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg550x-48p Search vendor "Cisco" for product "Sg550x-48p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sg550x-48mp Firmware Search vendor "Cisco" for product "Sg550x-48mp Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sg550x-48mp Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sg550x-48mp Search vendor "Cisco" for product "Sg550x-48mp" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sf550x-24 Firmware Search vendor "Cisco" for product "Sf550x-24 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sf550x-24 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sf550x-24 Search vendor "Cisco" for product "Sf550x-24" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sf550x-24p Firmware Search vendor "Cisco" for product "Sf550x-24p Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sf550x-24p Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sf550x-24p Search vendor "Cisco" for product "Sf550x-24p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sf550x-48 Firmware Search vendor "Cisco" for product "Sf550x-48 Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sf550x-48 Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sf550x-48 Search vendor "Cisco" for product "Sf550x-48" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sf550x-48p Firmware Search vendor "Cisco" for product "Sf550x-48p Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sf550x-48p Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sf550x-48p Search vendor "Cisco" for product "Sf550x-48p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Sf550x-48mp Firmware Search vendor "Cisco" for product "Sf550x-48mp Firmware" | <= 2.5.0.90 Search vendor "Cisco" for product "Sf550x-48mp Firmware" and version " <= 2.5.0.90" | - |
Affected
| in | Cisco Search vendor "Cisco" | Sf550x-48mp Search vendor "Cisco" for product "Sf550x-48mp" | - | - |
Safe
|